CVE-2025-31911: WordPress Social Share And Social Locker plugin <= 1.4.2 - SQL Injection vulnerability
Improper Neutralization of Special Elements used in an SQL Command ('SQL Injection') vulnerability in reputeinfosystems Social Share And Social Locker social-share-and-social-locker-arsocial allows Blind SQL Injection.This issue affects Social Share And Social Locker: from n/a through <= 1.4.2.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2025-31911?
CVE-2025-31911 has a high severity level due to its potential to allow blind SQL injection.
How do I fix CVE-2025-31911?
To fix CVE-2025-31911, update the NotFound Social Share And Social Locker plugin to version 1.4.3 or later.
What software is affected by CVE-2025-31911?
CVE-2025-31911 affects NotFound Social Share And Social Locker and WordPress Social Share And Social Locker versions up to 1.4.2.
What type of vulnerability is described by CVE-2025-31911?
CVE-2025-31911 describes an SQL Injection vulnerability that allows attackers to exploit improper neutralization of special elements in SQL commands.
Can CVE-2025-31911 lead to data breaches?
Yes, if exploited, CVE-2025-31911 can result in unauthorized access to sensitive data through SQL injection.